07 oct
|
Excelia
|
Madrid
You work in the Security Operations Centre on a rotating shift, reviewing alerts raised by the monitoring tools. For each one you check the surrounding activity, decide whether it is a false positive or a genuine incident, and escal ... ???
What you will do
- Triage alerts against the runbook and escal ...
- Write the timeline of what happened while it is still fresh
- Flag detections that fire constantly and are worth tuning
What they ask for
- Understands TCP/IP, DNS and well enough to read a packet capture
- Can explain the difference between a scan and an intrusion
- Writes clearly under time pressure
Nice to have
- Home lab
- Any SIEM exposure
- Scripting in Python or PowerShell
#J-18808-Ljbffr
📌 Analista SOC (Nivel 1) (Madrid)
🏢 Excelia
📍 Madrid